Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-3162

Stack-based buffer overflow in the str_read_packet function in libavformat/psxstr.c in FFmpeg before r13993 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted STR file that interleaves audio and video sectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.239
EPSS Ranking 95.8%
CVSS Severity
CVSS v2 Score 9.3
References
Products affected by CVE-2008-3162
  • Ffmpeg » Ffmpeg » Version: 0.3
    cpe:2.3:a:ffmpeg:ffmpeg:0.3
  • Ffmpeg » Ffmpeg » Version: 0.3.1
    cpe:2.3:a:ffmpeg:ffmpeg:0.3.1
  • Ffmpeg » Ffmpeg » Version: 0.3.2
    cpe:2.3:a:ffmpeg:ffmpeg:0.3.2
  • Ffmpeg » Ffmpeg » Version: 0.3.3
    cpe:2.3:a:ffmpeg:ffmpeg:0.3.3
  • Ffmpeg » Ffmpeg » Version: 0.3.4
    cpe:2.3:a:ffmpeg:ffmpeg:0.3.4
  • Ffmpeg » Ffmpeg » Version: 0.4.0
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.0
  • Ffmpeg » Ffmpeg » Version: 0.4.2
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.2
  • Ffmpeg » Ffmpeg » Version: 0.4.3
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.3
  • Ffmpeg » Ffmpeg » Version: 0.4.4
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.4
  • Ffmpeg » Ffmpeg » Version: 0.4.5
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.5
  • Ffmpeg » Ffmpeg » Version: 0.4.6
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.6
  • Ffmpeg » Ffmpeg » Version: 0.4.7
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.7
  • Ffmpeg » Ffmpeg » Version: 0.4.8
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.8
  • Ffmpeg » Ffmpeg » Version: 0.4.9
    cpe:2.3:a:ffmpeg:ffmpeg:0.4.9


Contact Us

Shodan ® - All rights reserved